IP Library Granted Patent US 11,736,523
Granted Patent B2
US 11,736,523 · App. 17/231,208 · Granted Aug 22, 2023

Systems and methods for aida based A/B testing

Inventor: Eric Sites (Clearwater, FL)
Assignee: KnowBe4, Inc.
H04L63/1483G06N3/044G06N3/08G06N3/084H04L63/1425H04L63/1433G06F2221/2119G06N3/047G06N20/00H04L63/1491
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,736,523
App. No.
17/231,208
Granted
Aug 22, 2023
Kind
B2
Abstract

Systems and methods are described by which a serving module of a campaign controller identifies a first version of a model which the campaign controller uses to communicate a first simulated phishing communication to a plurality of users. The campaign controller receives a first response from a first user to the simulated phishing communication and a second response from a second user to the simulated phishing communication and determines that the first and second responses are corresponding, for example are the same or similar. The serving module assigns a first user to a first group of users and a second user to a second group of users and identifies a second version of the model to use for the first user and a third version of the model to use for the second user.

Claims (33)

1. A method comprising:

communicating, by one or more processors, a first one or more simulated phishing communications to a plurality of users using a first version of a model;

receiving, by the one or more processors, one or more responses from the plurality of users to the first one or more simulated phishing communications;

responsive to the one or more responses from the plurality of users, updating, by the one or more processors, the first version of the model to create a second version of the model;

communicating, by one or more processors, a second one or more simulated phishing communications to the plurality of users using the second version of the model;

receiving, by the one or more processors, one or more responses from the plurality of users to the second one or more simulated phishing communications; and

determining, by the one or more processors based at least on the one or more responses to the second one or more simulated phishing communications, to replace the first version of the model with the second version of the model responsive to the second version of the model performing better than the first version of the model in causing the plurality of users to interact with a simulated phishing communication.

2. The method of claim 1 , further comprising generating, by one or more processors, the first one or more simulated phishing communications using the first version of the model.

3. The method of claim 1 , further comprising generating, by one or more processors, the second one or more simulated phishing communications using the second version of the model.

4. The method of claim 1 , further comprising using, by the one or more processors responsive to the determination, the second version of the model for subsequent simulated phishing communications to the plurality of users.

5. The method of claim 1 , further comprising determining, by the one or more processors based at least on the one or more responses to the second one or more simulated phishing communications, that the second version of the model performed better than the first version of the model in causing the plurality of users to interact with a simulated phishing communication.

6. The method of claim 1 , wherein the one or more responses indicate an interaction by one or more of the plurality of users with at least one of the first one or more simulated phishing communications.

7. The method of claim 1 , wherein the second one or more responses indicate an interaction by one or more of the plurality of users with at least one of the second one or more simulated phishing communications.

8. The method of claim 1 , wherein one of the first version of the model or the second version of the model is a classification model.

9. The method of claim 1 , wherein the model is configured for plurality of users sharing one or more common attributes.

10. The method of claim 1 , wherein one of the first version of the model or the second version of the model is a persona model.

11. A system comprising:

a memory and one or more processors, coupled to the memory and configured to:

communicate a first one or more simulated phishing communications to a plurality of users using a first version of a model;

receive one or more responses from the plurality of users to the first one or more simulated phishing communications;

responsive to the one or more responses from the plurality of users, update the first version of the model to create a second version of the model;

communicate a second one or more simulated phishing communications to the plurality of users using the second version of the model;

receive one or more responses from the plurality of users to the second one or more simulated phishing communications; and

determine, based at least on the one or more responses to the second one or more simulated phishing communications, to replace the first version of the model with the second version of the model responsive to the second version of the model performing better than the first version of the model in causing the plurality of users to interact with a simulated phishing communication.

12. The system of claim 11 , wherein the one or more processors are further configured to generate the first one or more simulated phishing communications using the first version of the model.

13. The system of claim 11 , wherein the one or more processors are further configured to generate the second one or more simulated phishing communications using the second version of the model.

14. The system of claim 11 , wherein the one or more processors are further configured to use, responsive to the determination, the second version of the model for subsequent simulated phishing communications to the plurality of users.

15. The system of claim 11 , wherein the one or more processors are further configured to determine, based at least on the one or more responses to the second one or more simulated phishing communications, that the second version of the model performed better than the first version of the model in causing the plurality of users to interact with a simulated phishing communication.

16. The system of claim 11 , wherein the one or more responses indicate an interaction by one or more of the plurality of users with at least one of the first one or more simulated phishing communications.

17. The system of claim 11 , wherein the second one or more responses indicate an interaction by one or more of the plurality of users with at least one of the second one or more simulated phishing communications.

18. The system of claim 11 , wherein one of the first version of the model or the second version of the model is a classification model.

19. The system of claim 11 , wherein the model is configured for the plurality of users sharing one or more common attributes.

20. The system of claim 11 , wherein one of the first version of the model or the second version of the model is a persona model.

Assignments (4)
PATENT SECURITY AGREEMENT Recorded Aug 8, 2025
From: KNOWBE4, INC.
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 072337/0277 →
RELEASE OF SECURITY INTEREST IN PATENT COLLATERAL RECORDED AT REEL/FRAME: 062627/0001 Recorded Jul 28, 2025
From: BLUE OWL CREDIT INCOME CORP. (FORMERLY KNOWN AS OWL ROCK CORE INCOME CORP.)
To: KNOWBE4, INC.
Reel/Frame 072108/0205 →
PATENT SECURITY AGREEMENT Recorded Feb 2, 2023
From: KNOWBE4, INC.
To: OWL ROCK CORE INCOME CORP., AS COLLATERAL AGENT
Reel/Frame 062627/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 15, 2021
From: SITES, ERIC
To: KNOWBE4, INC.
Reel/Frame 055928/0735 →
Cited By (2)
US 12,407,543 US 12,706,772